U.S. CISA adds Cisco Catalyst and LiteSpeed cPanel plugin flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 16, 08:53 UTC · Jun 16, 2026Exploit / PoC in the wildCVE-2026-20262CVE-2026-5442060
CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege EscalationThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2026Vulnerability in the wildCVE-2026-54420160
Attackers exploit cPanel CVE-2026Security Affairs·May 12, 11:41 UTC · May 12, 2026Ransomware in the wildCVE-2026-41940160
New cPanel vulnerabilities could allow file access and remote code executionSecurity Affairs·May 10, 16:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-29201CVE-2026-29202CVE-2026-29203+1 CVEs60
U.S. CISA adds a flaw in WebPros cPanel to its Known Exploited Vulnerabilities catalogSecurity Affairs·May 3, 14:41 UTC · May 3, 2026Exploit / PoC in the wildCVE-2026-4194060
cPanel's authentication bypass bug is being exploited in the wild, CISA warnsCyberScoop·Apr 30, 20:49 UTC · Apr 30, 2026Exploit / PoC in the wildCVE-2026-4194060
‘Scattered Spider’ Member ‘Tylerb’ Pleads GuiltyKrebs on Security·Apr 21, 15:27 UTC · Apr 21, 2026Ransomware57
Polyfill supply chain attack hits 100K+ sitesSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Malware42
ThreatsDay Bulletin: OpenSSL RCE, Foxit 0-Days, Copilot Leak, AI Password Flaws & 20+ StoriesThe Hacker News·Feb 23, 10:23 UTC · Feb 23, 2026Vulnerability55
Operation DoppelBrand Weaponizes Trusted Brands For Credential TheftInfosecurity Magazine·Feb 16, 15:45 UTC · Feb 16, 2026Ransomware45
The HoneyMyte APT now protects malware with a kernelKaspersky Securelist·Dec 29, 11:28 UTC · Dec 29, 2025Malware42
French NGO Reporters Without Borders Targeted by Star BlizzardInfosecurity Magazine·Dec 3, 16:45 UTC · Dec 3, 2025Malware30
Chinese Threat Actor TEMP.Periscope Targets UK-Based Engineering Company Using Russian APT TechniquesRecorded Future·Nov 21, 00:00 UTC · Nov 21, 2025Threat actor60
TamperedChef Malware Spreads via Fake Software Installers in Ongoing Global CampaignThe Hacker News·Nov 20, 04:35 UTC · Nov 20, 2025Malware42
MuddyWater Uses Compromised Mailboxes in Global Phishing CampaignInfosecurity Magazine·Oct 22, 16:00 UTC · Oct 22, 2025Threat actor60
GrayBravo’s CastleLoader Activity Clusters Target Multiple IndustriesRecorded Future·Oct 9, 00:00 UTC · Oct 9, 2025Malware30
RedHotel: A Prolific, Chinese State-Sponsored Group Operating at a Global ScaleRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Threat actorCVE-2022-24682CVE-2022-27924CVE-2022-27925+2 CVEs60
Exposing TAG-53’s Credential Harvesting Infrastructure Used for RussiaRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Threat actor45
China-Nexus TAG-112 Compromises Tibetan Websites to Distribute Cobalt StrikeRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Vulnerability42
Pro-Iran Hackers Aligned Cyber with Kinetic War AimsInfosecurity Magazine·Aug 5, 11:30 UTC · Aug 5, 2025Exploit / PoC60
Chinese State-Sponsored Activity Group TAG-22 Targets Nepal, the Philippines, and TaiwanRecorded Future·Jul 15, 00:00 UTC · Jul 15, 2025Threat actor57
APT42 impersonates cyber professionals to phish Israeli academics and journalistsSecurity Affairs·Jun 27, 07:11 UTC · Jun 27, 2025Threat actor45
From CastleLoader to CastleRAT: TAG-150 Advances Operations with MultiRecorded Future·Jun 22, 00:00 UTC · Jun 22, 2025Malware30
Alleged ‘Scattered Spider’ Member Extradited to U.S.Krebs on Security·May 1, 01:00 UTC · May 1, 2025Ransomware57
Phishers Exploit Google Sites and DKIM Replay to Send Signed Emails, Steal CredentialsThe Hacker News·Apr 23, 05:04 UTC · Apr 23, 2025Vulnerability42
Safe{Wallet} Confirms North Korean TraderTraitor Hackers Stole $1.5 Billion in Bybit HeistThe Hacker News·Mar 21, 04:26 UTC · Mar 21, 2025Vulnerability55
Golden Chickens Unveils TerraStealerV2 and TerraLogger: New Credential Theft Tools Identified by Insikt GroupRecorded Future·Jan 3, 00:00 UTC · Jan 3, 2025Malware42
North Korean Hackers Target Crypto Firms with Hidden Risk Malware on macOSThe Hacker News·Nov 8, 04:08 UTC · Nov 8, 2024Malware42
North Korea allegedly targeting crypto businesses with MacThe Record·Nov 7, 22:56 UTC · Nov 7, 2024Malware42
BlueNoroff used macOS malware with novel persistenceSecurity Affairs·Nov 7, 16:16 UTC · Nov 7, 2024Malware42
U.S. Seizes Domains Used by AI-Powered Russian Bot Farm for DisinformationThe Hacker News·Jul 12, 12:00 UTC · Jul 12, 2024Malware42
US, international authorities seize Russian AI bot farmCyberScoop·Jul 9, 19:10 UTC · Jul 9, 2024Exploit / PoC in the wild60
384,000 sites pull code from sketchy code library recently bought by Chinese firmArs Technica · Security·Jul 3, 19:36 UTC · Jul 3, 2024Industry42
Over 110,000 Websites Affected by Hijacked Polyfill Supply Chain AttackThe Hacker News·Jun 28, 04:05 UTC · Jun 28, 2024VulnerabilityCVE-2024-34102CVE-2024-296160
8,000+ Domains of Trusted Brands Hijacked for Massive Spam OperationThe Hacker News·Feb 27, 04:27 UTC · Feb 27, 2024Malware30
Cyber Threat Landscape: 7 Key Findings and Upcoming Trends for 2024The Hacker News·Jan 25, 13:43 UTC · Jan 25, 2024Ransomware57
Spotting and blacklisting malicious COVID-19-themed sitesHelp Net Security·Nov 14, 12:24 UTC · Nov 14, 2023Malware30
.US Harbors Prolific Malicious Link Shortening ServiceKrebs on Security·Oct 31, 15:13 UTC · Oct 31, 2023Malware42